• DocumentCode
    182025
  • Title

    A Resource-Optimized Approach to Efficient Early Detection of Mobile Malware

  • Author

    Milosevic, Jelena ; Dittrich, Andreas ; Ferrante, Augusto ; Malek, Miroslaw

  • Author_Institution
    Adv. Learning & Res. Inst., Univ. della Svizzera Italiana, Lugano, Switzerland
  • fYear
    2014
  • fDate
    8-12 Sept. 2014
  • Firstpage
    333
  • Lastpage
    340
  • Abstract
    With explosive growth in the number of mobile devices mobile malware is rapidly spreading, making security one of the key issues. Existing solutions, which are mainly based on binary signatures, are not very effective. The main contribution of this paper is a novel methodology to design and implement secure mobile devices by offering a resource-optimized method that combines efficient, light-weight malware detection on the mobile device with high precision detection methods on cloud servers. We focus on the early detection of behavioral patterns of malware families rather than the detection of malware binary signatures. Upon detection of an attack, an alarm is raised and the damage that can be caused by the detected malware type is estimated. Furthermore, the database with behavioral patterns is continuously updated, thus keeping a device resistant to new malware families.
  • Keywords
    cloud computing; invasive software; mobile computing; attack detection; cloud servers; efficient-light-weight malware detection; high-precision detection methods; malware family behavioral pattern detection; mobile devices; mobile malware detection; resource-optimized approach; resource-optimized method; secure mobile device design; secure mobile device implementation; Databases; Detection algorithms; Feature extraction; Malware; Mobile communication; Mobile handsets; behavioral patterns; distributed detection; information security; machine learning; mobile malware;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Availability, Reliability and Security (ARES), 2014 Ninth International Conference on
  • Conference_Location
    Fribourg
  • Type

    conf

  • DOI
    10.1109/ARES.2014.51
  • Filename
    6980300